2022-08-02T07:24:00Z

Community Spotlight #19

EB
  • 275
Published:
Search for a product comparison in Application Security Testing (AST)
PeerSpot user
1

1 Comment

EB
Community Manager
2022-08-02T08:26:09Z
Aug 2, 2022
Chris Childerhose - PeerSpot reviewer
Real User
ExpertTop 5
Aug 2, 2022

@Evgeny Belenky my pleasure always great to give back to the community.

PeerSpot user
Find out what your peers are saying about Sonar, Veracode, Checkmarx and others in Application Security Testing (AST). Updated: March 2024.
768,857 professionals have used our research since 2012.
Related Questions
reviewer2163450 - PeerSpot reviewer
Apr 26, 2023
Apr 26, 2023
Come on guys, the correct answer to this is the Microsoft Admin Portal and your Azure Admin and the Security and Compliance centers. Everyone wants to buy new SaaS when most of the Controls and Safeguards are built into MS. Steven Palange, steven_palange@tlic.com reach out for any and all your SaaS renewals.
See 2 answers
SP
Apr 25, 2023
Come on guys, the correct answer to this is the Microsoft Admin Portal and your Azure Admin and the Security and Compliance centers. Everyone wants to buy new SaaS when most of the Controls and Safeguards are built into  MS. Steven Palange, steven_palange@tlic.com reach out for any and all your SaaS renewals. 
reviewer2054484 - PeerSpot reviewer
Apr 26, 2023
For small companies, utilize the tooling you already have in place like the MS Office or the Atlassian Suite, etc. Ultimately, as you grow towards enterprise scale, Archer and ServiceNow (Governance, Risk, Compliance) can help with everything from compliance workflow to tracking incidence response. As a Cyber Architect in a corporate Fortune 500, we use a medley of integration with our SIEM, Vulnerability Tool, and all the collected data can be accessed by Tableau to generate a dynamic web graph. When you start tracking vulnerabilities and incidents, the data you accumulate can be expressed in your appropriate CPI. If you lack data for a particular CPI, then you may a gap in your cyber program.
Avigayil Henderson - PeerSpot reviewer
Feb 22, 2023
Feb 22, 2023
There is probably no single tool that can completely unify cloud compliance reporting across all cloud providers and compliance frameworks. That's a pretty big ask (but a good one). But there are, of course, tools that streamline compliance reporting and make the process easier to manage across multiple cloud environments and compliance standards. These compliance management platforms can help...
See 2 answers
Shibu Babuchandran - PeerSpot reviewer
Feb 19, 2023
Hi, some of the best cloud compliance reporting tools are as below- * Checkpoint CloudGuard Dome9 * Nutanix Xi Beam * Qualys Cloud Platform * Sophos Cloud Optix * Symantec Control Compliance Suite
LW
Feb 22, 2023
There is probably no single tool that can completely unify cloud compliance reporting across all cloud providers and compliance frameworks. That's a pretty big ask (but a good one). But there are, of course, tools that streamline compliance reporting and make the process easier to manage across multiple cloud environments and compliance standards. These compliance management platforms can help identify compliance gaps, enforce policies, and generate compliance reports. Prisma Cloud enables you to monitor, view, and report on cloud infrastructure health and your compliance posture. You can create reports with both summary and detailed findings of security and compliance risks and it also offers a Compliance Dashboard and the ability to create custom compliance standards. Check Point CloudGuard Posture Management looks to automate conformance to regulatory requirements and security best practices. It provides compliance posture management for AWS, Azure, Google Cloud, Alibaba Cloud, and Kubernetes and claims to reference over 50 compliance frameworks. It also enables customization of cloud compliance with its proprietary Governance Specification Language. Touting 65 out-of-the-box frameworks, CIS Benchmarks, and custom compliance checks, Orca Security is an agentless solution that works across multiple cloud platforms. It exposes and prioritizes issues so that compliance gaps can be addressed strategically. Another option is Chef Compliance, which leverages certified, curated audit and remediation content and aims to make sure assets are always in compliance with CIS benchmarks and DISA STIGs. It supports multiple cloud providers and compliance frameworks. Perhaps lesser-known, CloudCheckr helps maintain security and compliance in the cloud and monitors cloud infrastructure against dozens of standards including PCI DSS, HIPAA, CIS, and NIST. Cloud One - Conformity, from Trend Micro, works toward security, compliance, and governance of cloud infrastructure with real-time monitoring and auto-remediation features for AWS, Microsoft Azure, and Google Cloud.
Related Articles
LW
Oct 22, 2023
Oct 22, 2023
Top 3 Tech Leaders in Application Security Testing (AST) 2023 Discover the leading technology solutions in Application Security Testing (AST) with PeerSpot's annual Tech Leaders awards. The awards are based on comprehensive user reviews and other criteria as outlined below, offering you a window into the top products in this category and a way to explore and compare outstanding products. Join u...
Deena Nouril - PeerSpot reviewer
Aug 5, 2022
Aug 5, 2022
What is OWASP? The OWASP or Open Web Application Security Project is a nonprofit foundation dedicated to improving software security. It operates under an open community model, meaning that anyone can participate in and contribute to OWASP-related online chats and projects. The OWASP ensures that its offerings (online tools, videos, forums, events, etc.) remain free and are easily accessible th...
See 2 comments
Ben Arbeit - PeerSpot reviewer
Jul 31, 2022
Thanks for this informative article.
Jairo Willian Pereira - PeerSpot reviewer
Aug 5, 2022
OWASP is nice, but very specific and currently limited. How about trying ISO-24772 for all?
Related Articles
LW
Oct 22, 2023
Application Security Testing (AST) - Tech Leaders
Top 3 Tech Leaders in Application Security Testing (AST) 2023 Discover the leading technology sol...
Deena Nouril - PeerSpot reviewer
Aug 5, 2022
What is OWASP Top 10 in 2022
What is OWASP? The OWASP or Open Web Application Security Project is a nonprofit foundation dedic...
Download Free Report
Download our free Application Security Testing (AST) Report and find out what your peers are saying about Sonar, Veracode, Checkmarx, and more! Updated: March 2024.
DOWNLOAD NOW
768,857 professionals have used our research since 2012.